Improper input validation for some Intel NUC BIOS firmware before version JY0070 may allow a privileged user to potentially enable escalation of privilege via local access.

Project Subscriptions

Vendors Products
Nuc 7 Essential Nuc7cjysamn Subscribe
Nuc 7 Essential Nuc7cjysamn Firmware Subscribe
Nuc Kit Nuc7cjyh Subscribe
Nuc Kit Nuc7cjyh Firmware Subscribe
Nuc Kit Nuc7cjyhn Subscribe
Nuc Kit Nuc7cjyhn Firmware Subscribe
Nuc Kit Nuc7cjysal Subscribe
Nuc Kit Nuc7cjysal Firmware Subscribe
Nuc Kit Nuc7pjyh Subscribe
Nuc Kit Nuc7pjyh Firmware Subscribe
Nuc Kit Nuc7pjyhn Subscribe
Nuc Kit Nuc7pjyhn Firmware Subscribe
Intel Nuc Bios Firmware Subscribe
Intel Nuc Bios Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2023-32376 Improper input validation for some Intel NUC BIOS firmware before version JY0070 may allow a privileged user to potentially enable escalation of privilege via local access.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Mon, 21 Oct 2024 12:15:00 +0000

Type Values Removed Values Added
First Time appeared Intel Nuc Bios Firmware
Intel Nuc Bios Firmware intel Nuc Bios Firmware
Weaknesses CWE-116
CPEs cpe:2.3:o:intel_nuc_bios_firmware:intel_nuc_bios_firmware:*:*:*:*:*:*:*:*
Vendors & Products Intel Nuc Bios Firmware
Intel Nuc Bios Firmware intel Nuc Bios Firmware
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: intel

Published:

Updated: 2024-10-21T11:17:46.512Z

Reserved: 2023-03-29T03:00:02.768Z

Link: CVE-2023-28738

cve-icon Vulnrichment

Updated: 2024-08-02T13:51:37.318Z

cve-icon NVD

Status : Modified

Published: 2024-01-19T20:15:09.397

Modified: 2024-11-21T07:55:54.190

Link: CVE-2023-28738

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses